Manager, It Security Engineering, Ford Energy

Ford Ford · Auto · Dearborn, MI +2 · Enterprise Technology

Manager, IT Security Engineering role focused on implementing, operating, and optimizing enterprise security platforms (SIEM, XDR, PAM, vulnerability management, network security) with an L3 escalation point for SOC support. The role involves platform management, SIEM/logging leadership, vulnerability management, operational excellence, network security, incident response, and collaboration with IT teams. It also mentions applying AI-assisted approaches to investigation and security operations and requires participation in an L3 off-hours on-call schedule.

What you'd actually do

  1. Platform Management: Implement, configure, upgrade, document, and troubleshoot security platforms, including: Microsoft Sentinel (SIEM/SOAR), Microsoft Defender (XDR/DLP), Microsoft Purview, Entra ID, and Microsoft 365 Security, Tenable (including Cloud TVM), Tanium, Delinea (PAM), GitHub Security, Google Security Command Center (SCC), and Palo Alto Firewalls.
  2. SIEM & Logging: Lead enterprise-wide logging implementation and SIEM data onboarding.
  3. Vulnerability Management: Implement vulnerability and cloud TVM solutions and integrate with asset/CMDB data.
  4. Operational Excellence: Develop cyber security health monitoring and detection quality improvements.
  5. Incident Response: Act as L3 SOC support for advanced investigations and incident response.

Skills

Required

  • Cyber Security Engineering or Security Operations (SOC) experience
  • L3 or senior technical lead capacity experience
  • Microsoft Sentinel (SIEM/SOAR) implementation and management
  • Microsoft Defender (XDR) implementation and management
  • Microsoft Entra ID experience
  • Microsoft 365 security configurations experience
  • Microsoft Purview experience
  • Enterprise vulnerability management tools experience (e.g., Tenable, Tanium)
  • CMDB/Asset management workflows integration
  • Palo Alto Firewalls experience
  • Incident response lifecycles knowledge
  • Bachelor’s or Master’s degree in Computer Science, Engineering, or a related technical field.

Nice to have

  • Experience in Renewable Energy, Automotive (EV), or Semiconductor industries
  • Ability to communicate complex technical risks to executive leadership and board members
  • Familiarity with export control regulations and international intellectual property protection

What the JD emphasized

  • L3 escalation point
  • L3 SOC support
  • L3 off-hours on-call schedule
  • Minimum of 5–7 years of experience in Cyber Security Engineering or Security Operations (SOC), with a proven track record in an L3 or senior technical lead capacity.